|
The CertiPath Directory service offers hosting of
cross-certificates of Enterprise CAs and certificates of the
enterprise CAs certified by the CertiPath Common Root CA
(CRCA). It also hosts the current trust status for these
organizations through publication of no longer trusted
certificates to the Authority Revocation List (ARL).
These cross-certificates are published in
the LDAP directories of both CertiPath and the Enterprise
that has been cross-certified. CertiPath provides LDAP
access and LDAP referral service to relying parties who wish
to discover and process a Trust Path. As noted, an exchange
of the cross-certificates by the Bridge and the enterprise
CA establishes the trust framework that can be used by
relying parties in establishing the Trust Path. CertiPath's
directory supports LDAP and HTTP but does not support x.500
Directory Access Protocol (DAP). CertiPath members minimally
support HTTP access to their directories as a common
requirement.
|